-
Notifications
You must be signed in to change notification settings - Fork 562
AWS Security Hub #3589
Copy link
Copy link
Closed
Labels
8.4 candidate8.5 candidateEpicIn ProgressIntegration:awsAWSAWSNew IntegrationIssue or pull request for creating a new integration package.Issue or pull request for creating a new integration package.Partner
Metadata
Metadata
Assignees
Labels
8.4 candidate8.5 candidateEpicIn ProgressIntegration:awsAWSAWSNew IntegrationIssue or pull request for creating a new integration package.Issue or pull request for creating a new integration package.Partner
Type
Fields
Give feedbackNo fields configured for issues without a type.
Description
AWS Security Hub is a cloud security posture management service that performs security best practice checks, aggregates alerts, and enables automated remediation.
Architecture
Security Hub 'findings' can be sent to a SIEM such as Elastic via the GetFindings API endpoint: https://docs.aws.amazon.com/securityhub/1.0/APIReference/API_GetFindings.html
Integration release checklist
This checklist is intended for integrations maintainers to ensure consistency
when creating or updating a Package, Module or Dataset for an Integration.
All changes
New Package
Dashboards changes
Log dataset changes
sample_event.json) exists